See this document in CiteSeerX!

A Generic Attack on Checksumming-Based Software Tamper Resistance (2005)  (Make Corrections)  (3 citations)
Glenn Wurster, P.C. van Oorschot, Anil Somayaji



  Home/Search   Context   Related

 
View or download:
scs.carleton.ca/~p...tamper.25feb05.pdf
Cached:  PS.gz  PS  PDF   Image  Update  Help

From:  scs.carleton.ca/~paulv/papers/ (more)
(Enter author homepages)

Rate this article: (best)
  Comment on this article  
(Enter summary)

Abstract: Self-checking software tamper resistance mechanisms employing checksums, including advanced systems as recently proposed by Chang and Atallah (2002) and Horne et al. (2002), have been promoted as an alternative to other software integrity verification techniques. Appealing aspects include the promise of being able to verify the integrity of software independent of the external support environment, as well as the ability to automatically integrate checksumming code during program compilation or... (Update)

Cited by:   More
Hybrid Static-Dynamic Attacks against Software.. - Madou, Anckaert.. (2005)   (Correct)
Hardware-Assisted Circumvention of Self-Hashing.. - van Oorschot.. (2005)   (Correct)

Active bibliography (related documents):   More   All
0.5:   Revisiting Software Protection - van Oorschot (2003)   (Correct)
0.5:   Using Software-based Attestation for Verifying.. - Seshadri, Perrig..   (Correct)
0.5:   Side effects are not sufficient to authenticate software.. - Ushankar Cs Berkeley   (Correct)

Similar documents based on text:   More   All
0.4:   Pass-thoughts: Authenticating with Our Minds - Thorpe, van Oorschot, Somayaji (2005)   (Correct)
0.2:   Message Authentication by Integrity with Public Corroboration - van Oorschot (2005)   (Correct)
0.1:   Intrusion Detection using Sequences of System Calls - Hofmeyr, Forrest, Somayaji (1998)   (Correct)

Related documents from co-citation:   More   All
3:   Protecting software code by guards (context) - Chang, Atallah - 2001
3:   Oblivious hashing: A stealthy software integrity verification primitive (context) - Chen, Venkatesan et al. - 2002
3:   Dynamic self-checking techniques for improved tamper-resistance - Horne, Matheson et al. - 2001

BibTeX entry:   (Update)

G. Wurster, P. van Oorschot, and A. Somayaji. A generic attack on checksumming-based software tamper resistance. In IEEE Symposium on Security and Privacy, 2005. http://citeseer.ist.psu.edu/wurster05generic.html   More

@misc{ wurster05generic,
  author = "G. Wurster and P. van Oorschot and A. Somayaji",
  title = "A generic attack on checksumming-based software tamper resistance",
  text = "G. Wurster, P. van Oorschot, and A. Somayaji. A generic attack on checksumming-based
    software tamper resistance. In IEEE Symposium on Security and Privacy, 2005.",
  year = "2005",
  url = "citeseer.ist.psu.edu/wurster05generic.html" }
Citations (may not include all citations):
168   Protecting mobile agents against malicious hosts - Sander, Tschudin - 1998  ACM   DBLP
57   programmable secure coprocessor (context) - Smith, Weingart et al. - 1999
56   Time limited blackbox security: Protecting mobile agents fro.. - Hohl - 1998
54   Architectural support for copy and tamper resistant software - Lie, Thekkath et al. - 2000  ACM   DBLP
50   The design and implementation of Tripwire: A file system int.. - Kim, Spafford - 1994  DBLP
30   Tamper resistant software: An implementation (context) - Aucsmith - 1996
29   AEGIS: architecture for tamper-evident and tamper-resistant .. - Suh, Clarke et al. - 2003
24   The inevitability of failure: The flawed assumption of secur.. (context) - Loscocco, Smalley et al. - 1998
17   A Security Architecture for Survivability Mechanisms - Wang - 2000  ACM
15   Direct anonymous attestation - Brickell, Camenisch et al. - 2004  ACM
13   Software protection: Myth or reality (context) - Gosler - 1985
13   Dynamic self-checking techniques for improved tamper resista.. - Horne, Matheson et al. - 2001
13   Protecting software code by guards (context) - Chang, Atallah - 2001  ACM   DBLP
11   SWATT: Software-based attestation for embedded devices - Seshadri, Perrig et al. - 2004
11   and obfuscation: Tools for software protection (context) - Collberg, Thomborson et al. - 2002
9   can mobile agents do secure electronic transactions on untru.. (context) - Claessens, Preneel et al. - 2003
8   UltraSPARC III Cu user's manual (context) - Microsystems - 2004
7   Establishing the genuinity of remote computer systems (context) - Kennell, Jamieson - 2003
6   Oblivious hashing: A stealthy software integrity verificatio.. (context) - Chen, Venkatesan et al. - 2002  DBLP
6   Attestation-based policy enforcement for remote access (context) - Sailer, Jaeger et al. - 2004  ACM
6   Revisiting software protection - van Oorschot - 2003  DBLP
5   NGSCB: A trusted open system (context) - Peinado, Chen et al. - 2005
5   Copilot - a coprocessor-based kernel runtime integrity monit.. (context) - Nick, Petroni et al. - 2004
4   An approach to the objective and quantitative evaluation of .. (context) - Goto, Mambo et al. - 2000  ACM   DBLP
4   An analysis of proposed attacks against genuinity tests (context) - Kennell, Jamieson - 2004
4   Side effects are not sufficient to authenticate software - Shankar, Chew et al. - 2004
3   Trusted platfrom module (context) - Group - 2001
3   Proactive software tampering detection (context) - Jin, Lotspiech - 2003  DBLP
2   AMD64 Architecture Programmer's Manual (context) - Devices - 2003
2   chapter 6 - Common PALcode Architecture (context) - Corporation, Handbook - 1998
1   Generic attacks on self-checksumming software tamper resista.. (context) - Wurster, van Oorschot et al.

Documents on the same site (http://www.scs.carleton.ca/~paulv/papers/):   More
Authentication and Authenticated Key Exchanges - Diffie, van Oorschot, Wiener (1992)   (Correct)
Addressing Online Dictionary Attacks with Login.. - Stubblebine, van.. (2004)   (Correct)
Security Analysis of the Message Authenticator Algorithm.. - Preneel, Rijmen, van.. (1997)   (Correct)

Online articles have much greater impact   More about CiteSeer.IST   Add search form to your site   Submit documents   Feedback  

CiteSeer.IST - Copyright Penn State and NEC